[prev in list] [next in list] [prev in thread] [next in thread] 

List:       ms-cryptoapi
Subject:    Re: Volatile keys in RSA provider
From:       Patrick Dolan <Patrick_Dolan () EFUNDS ! COM>
Date:       2001-01-18 9:59:48
[Download RAW message or body]


Alexei,

Most of the major smart card vendors have implemented Smart Card
Cryptographic Service Providers that support the CryptoAPI.  All the
private key operations are implemented in the smart card and hence the
private key never leaves the card. The rest is usually delegated to the
Microsoft Base, Enhanced or Strong CSP.

I am not aware of a smart card allowing the private key to be exported from
the card to create a 'volatile' key in the registry.

Regards,
Patrick.





Alexei Shamov <al77@BIGFOOT.COM>@DISCUSS.MICROSOFT.COM> on 17/01/2001
18:26:31

Please respond to Microsoft Cryptographic API
      <CryptoAPI@DISCUSS.MICROSOFT.COM>

Sent by:  Microsoft Cryptographic API <CryptoAPI@DISCUSS.MICROSOFT.COM>


To:   CryptoAPI@DISCUSS.MICROSOFT.COM
cc:
Subject:  Volatile keys in RSA provider


Hi All,

I would like not to store private keys for Microsoft RSA CSP in registry
but to do store them using a proprietary mechanism.

However, in order to sign/decrypt data keys need to be imported into the
Microsoft CSP and will appear in registry. Is there any way to prevent that
(I have heard that some smart-card CSPs use rsaenh.dll to perform
cryptographic operations) and create 'volatile' key containers?

Thank you,
Alexei

----------------------------------------------------------------
Users Guide http://msdn.microsoft.com/workshop/essentials/mail.asp
contains important info. Save time, search the archives at
http://discuss.microsoft.com/archives/index.html .
To unsubscribe, mailto:CryptoAPI-signoff-request@DISCUSS.MICROSOFT.COM

----------------------------------------------------------------
Users Guide http://msdn.microsoft.com/workshop/essentials/mail.asp
contains important info. Save time, search the archives at
http://discuss.microsoft.com/archives/index.html .
To unsubscribe, mailto:CryptoAPI-signoff-request@DISCUSS.MICROSOFT.COM

[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic